REBOOTEXEC.EXE

Ultra Virus Killer

carifred.com

This is installed with UVK.
Publisher:
Carifred  (signed by carifred.com)

Product:
Ultra Virus Killer

Description:
UVK reboot command parser

Version:
1.6.0.0

MD5:
f376c795767c967213f5b5103acee98b

SHA-1:
1b02d3f416530ccf7d25614ce7e4800a9507b20e

SHA-256:
40ffc217ee9f0f1c9b2259ce62f4143d865ebc4e7628f2c0583b30f6c6b5cecf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 12:32:18 AM UTC  (today)

File size:
971.2 KB (994,512 bytes)

Product version:
4.6.0.0

Copyright:
Carifred © 2010 - 2013

Trademarks:
Carifred.com

Original file name:
REBOOTEXEC.EXE

File type:
Executable application (Win64 EXE)

Language:
English (United Kingdom)

Common path:
C:\Program Files\uvk\rebootexec.exe

Digital Signature
Signed by:

Authority:
carifred.com

Valid from:
4/24/2011 3:17:11 PM

Valid to:
12/31/2039 6:59:59 PM

Subject:
CN=carifred.com

Issuer:
CN=carifred.com

Serial number:
15B6929F9FBFD3BF4066AA932B2DAAA2

File PE Metadata
Compilation timestamp:
1/29/2012 4:32:45 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:XAQoDefT6HesrQrSDZhyZ+aan+mMfqZaRfu3lyFecFf0h:XAcGHC2ZUZ+umWea2lyscFc

Entry address:
0x1A53C

Entry point:
48, 83, EC, 28, E8, 03, A7, 00, 00, 48, 83, C4, 28, E9, 52, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 4D, 85, C0, 74, 75, 48, 2B, D1, 4C, 8B, CA, 49, BB, 00, 01, 01, 01, 01, 01, 01, 81, F6, C1, 07, 74, 1F, 8A, 01, 42, 8A, 14, 09, 48, FF, C1, 3A, C2, 75, 57, 49, FF, C8, 74, 4E, 84, C0, 74, 4A, 48, F7, C1, 07, 00, 00, 00, 75, E1, 4A, 8D, 14, 09, 66, 81, E2, FF, 0F, 66, 81, FA, F8, 0F, 77, D1, 48, 8B, 01, 4A, 8B, 14, 09, 48, 3B, C2, 75, C5, 48, 83, C1, 08, 49, 83, E8...
 
[+]

Entropy:
6.5178

Code size:
583 KB (596,992 bytes)

The file REBOOTEXEC.EXE has been discovered within the following program.

UVK  by Carifred
www.carifred.com/uvk
About 1% of users remove it
 
Powered by Should I Remove It?

Scan REBOOTEXEC.EXE - Powered by Reason Core Security